Skip to content

docs: add security policy#9

Merged
JRemitz merged 1 commit into
mainfrom
docs/security-policy
Apr 10, 2026
Merged

docs: add security policy#9
JRemitz merged 1 commit into
mainfrom
docs/security-policy

Conversation

@JRemitz
Copy link
Copy Markdown
Contributor

@JRemitz JRemitz commented Apr 10, 2026

Summary

Adds SECURITY.md so GitHub renders a policy in the Security tab and checks off "Security policy" in Community Standards. Scope is tailored for an LLM plugin: API key leakage, prompt injection via untrusted game metadata, response deserialization. Out-of-scope: OpenAI API and SDK upstream.

Follow-up

  • Enable Private Vulnerability Reporting under Settings → Code security.

Documents scope (API key leakage, prompt injection, response handling),
supported versions, and private vulnerability reporting channel so
GitHub surfaces a policy in the Security tab and Community Standards
checklist.
@JRemitz JRemitz merged commit 73dc2d1 into main Apr 10, 2026
5 checks passed
@JRemitz JRemitz deleted the docs/security-policy branch April 10, 2026 16:35
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant